Cisco AP350 Vxwork to IOS Conversion
Hi,
I'm trying to convert my cisco 350 from VxWorks to IOS. In the middle of uploading I received an error. Unable to detect source AP: Check: 1. Network connectivity, 2. User's Capability and 3. Whether SNMP is enabled in the source AP. However I'm unable to connect back to the AP using the browser interface. I also tried using the IPSU tool to get the IP address from the MAC address and that return a message "Device does not answer." Is there any other way to connect to the AP and reconfigure it? Any help is appreciated.
Thanks,
Mike
Not sure what status screen you are referring to but if you follow the procedure below verbatim, you should be able to recover it.
Recover from a Failure
The menu that displays after the boot process is the VxWorks bootloader, which is functionally equivalent to ROM monitor (ROMmon) in Cisco IOS Software. Neither of the full operating systems is loaded or available, so neither of the full command sets is available.
Note: If the VxWorks bootloader has been upgraded to Cisco IOS Software ROMmon but Flash memory has no operating system available, the unit displays the ap: prompt. In order to recover from this condition, refer to the Using the MODE button section in the Troubleshooting chapter of the Configuration Guide.
Use these steps to restart the conversion process and get the unit back up:
1.
If there is an 802.11a radio module installed (AIR-RM20A), remove it during the rest of this procedure.
2.
Verify that the connection settings in the terminal application are 9600-8-None-1 and NO flow control (not hardware or software).
3.
Format the Flash memory for the unit to accept the VxWorks upgrade image:
1.
Press Ctrl-Z in order to bring up the hidden Format menu.
2.
Press exclamation point (!, Shift-1) in order to choose Format.
3.
Press 3 in order to choose Flash memory.
Note: 3 is usually the choice for Flash memory. But you may have to enter a different number, which depends on your setup.
4.
Press Y (Shift-y) in order to confirm the decision to reformat the Flash memory.
The reformat takes a few moments, after which the bootloader menu appears again.
4.
Transfer the upgrade image onto the AP.
Complete these steps in order to start the transfer of the upgrade image:
1.
Press l (lowercase L) in order to put the AP into receive mode.
The file transfer protocol appears, and characters scroll across the line as the unit waits for data to flow to it.
2.
In Microsoft Windows HyperTerminal, choose Transfer > Send.
3.
Choose an appropriate file transfer protocol.
4.
Browse to the location of the AP1200-Cisco-IOS-Upgrade-Image-v3.img file on the hard drive.
5.
Select the AP1200-Cisco-IOS-Upgrade-Image-v3.img file and click Send.
When the file transfer is complete, the bootloader menu appears again. A file list also appears, which shows that the files that are compressed inside of the AP1200-Cisco-IOS-Upgrade-Image-v3.img file are now located in DRAM in the AP.
5.
Transfer the files to Flash with the copy process.
Note: The files must be in Flash memory.
Complete these steps:
1.
Press c in order to copy.
2.
Press 3 in order to choose the Flash memory as the destination.
3.
Choose the appropriate option for each of the files that are listed in DRAM.
4.
Repeat Steps 5a through 5c (the c ... 3 ... file option cycle) for each of the files that are in DRAM.
Each time that you repeat the cycle, the bootloader menu and file list appear and show the progress of file copies from DRAM into Flash memory.
6.
Power cycle the AP.
The upgrade proceeds as expected. During a successful upgrade, you see output that is similar to this:
flashfs[0]: Checking block 25...bad block number (-1)
flashfs[0]: erasing block 25...done.
flashfs[0]: Checking block 26...bad block number (-1)
flashfs[0]: erasing block 26...done.
flashfs[0]: Checking block 27...bad block number (-1)
flashfs[0]: erasing block 27...done.
7.
After the upgrade finishes successfully, reinstall the RM20A as needed.
Similar Messages
-
WLSE VxWorks to IOS Conversion Failure
Has anyone noted a failure on the VxWorks to IOS Conversion that yeilds a results of no ability to log into the Access Point via Browser?
Telnet works, as well as direct Console connection.
Second is the browser access functions, but requests a logon/password, and fails every attempt with all known Logon/Passwords? Note, all accounts are functional when accessing Telet and/or Console Port.
Any Issues with the Conversion Template in WLSE?Follow-Up for "rmushtag". Do you have a back channel EMail addy. I have a follow-up question I'd rather take off-line.
Thanks -
Aironet 350BR failed VxWorks to IOS conversion
I have tried to upgrade VxWorks to IOS and by mistake uploaded AP-Upgrade-Image. After restart it gives me the following:
Cisco IOS automatic field upgrade image, ESC to terminate
..10....9....8....7....6....5....4....3....2....1..
upgrade: Compare ok first load file 0
upgrade: Compare ok first load file 1
upgrade: Compare ok first load file 3
upgrade: IOS Configuration component not available
upgrade: Invalid or missing installation key (BR350 not supported)!
Depress ESC key to reboot
Now BR350 has the following files:
Memory Bank total used left
DRAM 16738168 0 16738168
Config 524288 628 523660
FLASH 7733248 4291344 3441904
Memory Bank:File address size encoding type flags
a) Config:BR Installation Key FE020000 64 none Key 0000
b) Config:VAR Installation Key FE020040 52 none Key 0000
c) Config:AWC_ConfigDB FE020074 512 AiroDB1 Data 0000
d) FLASH :IOS_Upgrade 1.0 FE0A0000 393268 none Exec 0801
e) FLASH :IOS_C350_BOOT 2 FE100034 393256 none 0x09 0800
f) FLASH :IOS_C350_TAR 2 FE16005C 3467304 none 0x0A 0800
g) FLASH :IOS_Upgrade_Envs 1.0 FE4AE884 136 none 0x0C 0800
h) FLASH :AWC PCMCIA FPGA 0.14 FE4AE90C 37380 none FPGA 0000
When I press Ctrl+W I have the following options:
c -- Copy file
f -- File dir
l -- downLoad file into DRAM
u -- Upload file
p -- xfer Protocol
n -- coNsole
r -- Run
s -- System info.
I can't copy to Flash. When I copy to DRAM Vxworks image file and try to run
Any chance to fix it?When I copy to DRAM Vxworks image file and try to run it gives me error on decompressing image.
How can I manualy decompress .img file? -
IOS conversion from VxWorks 12.03
I have heard a rumor that you can not update to IOS from VxWorks 12.03. YOu have to go back down to 12.02 and then upgrade from there......Does this rumor have any merit?
ThanksThere is merit to the rumor. Cisco does not recommend performing an IOS conversion on a 12.03T VxWorks AP because of a problem with the flash overwrite. It's possible that the conversion may be successful, but there is a chance of it resulting in a non-recoverable situation.
-
Cannot upgrade 1200AP from VxWorks to IOS
I am having problems upgrading two 1200 APs from Cisco 1200 Series AP 12.03T VxWorks to IOS using the CAC Tool. Originally all eight of my units were at Cisco 1200 Series AP 12.02T and I successfully upgraded six of them to IOS, but these two have been giving me problems. I thought I would upgrade the VxWorks to 12.03T and try again, and the VxWorks upgrade went fine through the AP web interface. The CAC tool upload of the IOS upgrade image, however, fails everytime, and if I telnet to the APs when I am doing the upgrade I get a message saying the TFTP started, but in a few seconds it times out. The APs do have over 5.5 MB of free RAM, so that is not a problem.
Should I try to FTP the image to the AP, and if so, how ? I am not concerned about saving any settings on the AP as I can restore them from my AP management software.
Thakns for any ideas,
ShivajiIn order to run the upgrade process, the AP must have at least 4 MB of DRAM available. Issue the :vxdiag_memshow VxWorks command, at the prompt of a console or of a Telnet session, in order to display the amount of free DRAM.
In order to increase free DRAM, you must terminate noncritical processes or temporarily disable other resources (like a second radio). Try some or all of these actions in order to increase free DRAM:
http://www.cisco.com/en/US/products/hw/wireless/ps430/products_tech_note09186a008019fea0.shtml
http://www.cisco.com/en/US/products/hw/wireless/ps441/products_tech_note09186a0080093c37.shtml -
Monitoring Cisco ASR 1002 with IOS-XE in IPM 4.2
We are running LMS 3.2 with IPM 4.2 installed....and we are looking to do IPSLA monitoring on a couple of our Cisco ASR's with IOS-XE code installed.
I looked at the IPSLA feature mapping and it only talks about supported IOS code....do we need to upgrade our current IPM module to a current version?Hi Konstantin,
Regarding "It is strange that these commands cleaned from sh run view.": this is normal for many default configuration commands.
Mine is a lab device so I cannot really comment on stability or provide you a recommendation based on that. However, I see that the download section from Cisco.com mentiones the following release as the recommended based on quality, stability and longevity:
asr1002x-universal.03.07.04a.S.152-4.S4a.SPA.bin
The best would be for you to check this with yor cisco Account Team or Advanced Services Team as normally they are the proper point of contacts for SW advisory.
Regards. -
I would like to convert CatOS configuration file to IOS
I am trying to use the Configuration Conversion Tool on Cisco web
CatOS has two configuration file ( SUP Configuration & MSFC configuration )
Which file should I paste on the Conversion tool to be converted ?
Some commands can't be converted (Skipped Commands) ?
Any one has experince with the Cat configuration conversion tool can help me ?
Regards
MohamedHi Mohamed,
The MSFC configuration you will not need to translate. This configuration is always in IOS mode and it will be the same in the native mode.
I have some translation to your CatOS commands:
set password xxxxxxxxx
set enablepass xxxxxxxxx
You will not need because you will use the password from your MSFC configuration.
set prompt tower_main --> hostname touwer_main
set system highavailability enable
set inlinepower defaultallocation 7000
These 2 commands I don't remember.
set spantree mode pvst+
This command you will not need because this is the default mode of spantree.
set vtp passwd portfast --> vtp passwd porfast
set vtp version 2 --> vtp version 2
set ip alias default 0.0.0.0
set logging server enable
set timezone PDT -7 0
set boot config-register 0x2102
These commands above you won't need because they must already exist in your MSFC configuration.
set boot system flash bootflash:cat6000-sup2k8.8-2-1.bin
Your will replace this with the new IOS image in the native mode, and the syntax is the same that in youe MSFC configuration:
boot system flash bootflash:image.bin
set igmp querier enable 1,500,700
set port dot1x 1/1 guest-vlan 0
set port qos 3/4,3/9,3/11 trust trust-cos
set port qos 3/1-4,3/9-12 policy-source local
set port qos 4/11 trust trust-cos
set port qos 4/9-12 policy-source local
These other commands above I don't remember.
set span 1 10/13 both inpkts disable learning enable multicast enable create
In the native mode you will replace the "set span" with the command "monitor session". Here is an example:
monitor session 1 source interface fastEthernet 0/1 both
monitor session 1 destination interface fastEthernet 0/9
It will monitor fast0/1 and will send all the traffic to interface fast0/9
I hope that this can help you.
Fabrício Nunes Monte
Network Analyst -
Autonomous Cisco AP1131 had an IOS download, deleted existing IOS, now the AP won't boot
I did a tftp download of 12.3(8) to this AP, which went fine. Then I did a force delete of existing 12.4 flash file and then reloaded the AP. Now, all I get is ap: prompt and no boot with a message saying "system unable to boot because there are no bootable files to boot". Did I miss setting the boot parameters before deleting the 12.4? I have tried the set commands but it does not seem to work. Any ideas, anyone?
Thanks!
ManishThe easiest and fastest way to put the IOS back in ...
Using a TFTP Server to Return to a Previous Release
http://www.cisco.com/en/US/docs/wireless/access_point/conversion/lwapp/upgrade/guide/lwapnote.html#wp160918
Please don't forget to rate our useful posts. Thanks. -
Enable Web gui on Cisco 2901 ISR running IOS 15...
I have recently purchased a Cisco 2901 Integrated Service Router that is running IOS 15... and need some help activating the WEB GUI Interface. I have read some documentation and have not had any luck. Some detailed instructions for the command line would be great if someone has the time to help.
ThanksHi,
It looks as though there is not a Web GUI available for the 2901. However, Cisco does provide a tool called Cisco Configuration Professional, which provides tools to configure routers. It provides options for configuring many different functions in Cisco routers. You can follow the steps laid out in this article: http://www.cisco.com/c/en/us/td/docs/net_mgmt/cisco_configuration_professional/guides/CiscoCPqsg.html
This gives a great overview of how to install and start using Configuration Professional. I hope this helps, and please feel free to respond with any further questions. I will certainly do my best to answer them!
Garrett -
FreeRadius and Cisco 2600 Terminal Server [IOS 12.1(3)T]
Hi Cisco People
I'm using FreeRadius 2 and Cisco 2600 Terminal server to coordinate access to cisco routers based on time ranges.
Basically we are an education/training environment where we have some students accessing the routers and switches for practise, terminal server are used to consolidate the console access, and these terminal servers authenticate the users through a Radius server (as shown in the following figure). Additionally, the students are categorized into few groups. We want to implement policy on the radius server so that only a certain group can access the resources in a given duration of time (the user should be dropped from the terminal when the subscribed time is reached and cannot access thereafter .)
+++++++++++++++ +++++++++++++++++ +++++++++++++
+ User +++++++++++++++++++++++ Cisco 2600 +++++++++++++++++++++ Network +
+ + + Terminal Serv + + Devices +
+++++++++++++++ +++++++++++++++++ +++++++++++++
(NAS)
+
+
+++++++++++++++
+ FreeRadius +
+++++++++++++++
Right now I'm able to do the "hello-world" setup with the following users and clients.conf. On the terminal server side, aaa new-model is enabled on the cisco terminal server to communicate with this radius server.
users
=============
cisco Auth-Type := System
Service-Type = NAS-Prompt-User,
cisco-avpair = "shell:priv-lvl=15"
clients.conf
==============
client 192.168.1.1 {
secret = SECRET_KEY
shortname = termserver
nastype = cisco
A typical transaction would be :
Access-Request
=======
NAS-IP-Address = 192.168.1.1
NAS-Port = 35
NAS-Port-Type = Async
User-Name = "cisco"
Calling-Station-Id = "1.1.1.1"
User-Password = "cisco"
Access-Accept
=======
Service-Type = NAS-Prompt-User
Cisco-AVPair = "shell:priv-lvl=15"
This works fine but doesn't provide any timing limitations. So I have modified the FreeRadius config to be :
users
=============
cisco Auth-Type := System
Service-Type = NAS-Prompt-User,
cisco-avpair = "shell:priv-lvl=15",
Session-Timeout = 20
Cisco Terminal Server
==============
aaa new-model
aaa authentication login default group radius local none
aaa authorization exec default group radius if-authenticated
aaa accounting exec default start-stop group radius
aaa accounting network default start-stop group radius
aaa accounting connection default start-stop group radius
After this, I am able to see that the terminal server actually receives an Access-Accept including the Session-Timeout attributes like the following :
Service-Type = NAS-Prompt-User
Cisco-AVPair = "shell:priv-lvl=15"
Session-Timeout = 20
But the problem is that it doesn't really terminate the session after the 20 seconds are reached . My questions is that :
1. Is the terminal server really able to enforce such time limit after receiving the attribute ?
2. Is the 2600 terminal server with [IOS 12.1(3)T] compliant with RFC 2865?
3. What can I do so that the terminal server forces the user to be logged out after the session time limit is reached ?
Thanks
FrankFrank,
I think you should use the login time s well:
Login-Time
Login-Time is a very powerful internal check AVP. It allows flexible authorization and its value is used by the logintime (rlm_logintime) module to determine if a person is allowed to authenticate to the FreeRADIUS server or not. This value is also used to calculate the Session-Timeout reply value. Session-Timeout is subsequently used by the NAS to limit access time.
The following line will grant Alice access only between 08:00 and 18:00 each day.
"alice" Cleartext-Password := "passme", Login-Time := 'Al0800-1800'
The logintime module will calculate the reply value of Session-Timeout if Alice has logged in within the permitted timeslots to inform the NAS how long she is allowed to stay connected. If Alice tries to access the network when she is not permitted, the request will be rejected.
http://www.packtpub.com/article/getting-started-with-freeradius
http://wiki.freeradius.org/config/Users
yes, the terminal server is RFC 2865 compliant.
Rate if Useful :)
Sharing knowledge makes you Immortal.
Regards,
Ed -
Cisco 3825 router boot ios from usb
HI All
I got a Cisco 3825 Router CF card failure, can I boot IOS from USB?
Physically I found 2 usb ports but nothing I can see in ROMMON mode, may I know how to boot from USB?
rommon 1 > dev
Devices in device table:
id name
flash: compact flash
bootflash: boot flash
eprom: eprom
rommon 2 >
HugoHi Hugo,
The only time you can get an ISR G1 (except 870) to boot from USB is when you have upgraded the bootstrap to 12.4(13r)T15.
The command to boot from USB is a hidden command. From ROMmon the command is "boot usbflash0:IOS_filename.bin". -
CatOS to IOS conversion without RP
We have a Cat 6509 with a WS-SUP32-GE-3B and want to convert the CatOS to IOS. We need to know if we can do the conversion, since we don't have a Route Processor implemented on the switch infrastructure. This environment consists of pure layer 2 switches with stand alone switch processors and no routing capabilities. Everything we've read shows navigating into the RP to load the new image. Would we be capable of converting to IOS in this instance?
Thanks for any help..I am not at the remote site, but this is the show module for the CAT 6509:
Here's the list of modules within the chassis:
Mod Slot Ports Module-Type Model Sub Status
1 1 48 10/100/1000BaseT Ethernet WS-X6148A-GE-TX no ok
2 2 48 10/100/1000BaseT Ethernet WS-X6148A-GE-TX no ok
3 3 48 10/100/1000BaseT Ethernet WS-X6148A-GE-TX no ok
4 4 48 10/100/1000BaseT Ethernet WS-X6148A-GE-TX no ok
5 5 9 1000BaseX Supervisor WS-SUP32-GE-3B yes ok
6 6 48 10/100/1000BaseT Ethernet WS-X6148A-GE-TX no ok -
Catalyst 4003 CatOS to IOS conversion.
Hello!
We are currently running CatOS on our Catalyst 4003 but would like to convert to IOS so we can monitor ports using Cisco Network Assistant.
Can this be done? I've seen documentation for the 6500 but not the Catalyst 4000's.
Thanks
StuartIf you have a cat4000 running CatOS that means you have a supI or SupII, these sups cannot be converted to IOS. The same is true if you would want to convert a SupII+ or above which runs IOS exclusively, they cannot be converted to CatOS. Cat4000 sups have entirely different hadrware architecture than Cat6K sups so they cannot be compared.
-
IPhone 2.1 now supports Cisco VPN Client to IOS router
Just tested it. The Cisco VPN Client in iPhone 2.1 now connects to my IOS router. Excellent.
I have a Cisco 1812 with 12.4(20)T. I know that 12.4(6)T and some other versions have an issue with the negotiation of IPSec policies which basically means that only the first proposal is considered. If the first proposal matches you have a connection. If it does not match, the connection is refused even though other proposals would be O.K.
The relevant isakmp/ipsec config should be:
crypto isakmp policy 3
encr 3des
authentication pre-share
group 2
crypto isakmp client configuration group myvpn
key mysecretkey
dns 10.0.0.2 10.0.0.3
wins 10.0.0.2
domain mydomain.example.com
pool ippool
acl 150
split-dns mydomain.example.com
netmask 255.255.255.0
crypto isakmp profile ike-myvpn-profile
match identity group myvpn
client authentication list userauthen
isakmp authorization list groupauthor
client configuration address respond
virtual-template 2
crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto ipsec profile myvpn
set transform-set ESP-3DES-SHA
set isakmp-profile ike-myvpn-profile
interface Virtual-Template2 type tunnel
ip unnumbered FastEthernet1
ip nat inside
ip virtual-reassembly
tunnel mode ipsec ipv4
tunnel protection ipsec profile myvpn
See also http://www.cisco.com/en/US/docs/ios/security/configuration/guide/secipsec_virt_tunnl_ps6441_TSD_Products_Configuration_GuideChapter.html
If you have IOS 12.4(6)T or similar which has the bug I have mentioned you have to use aes instead of 3des for the transform set. The first proposal of the iPhone is aes. Be sure to check the "debug crypto ipsec" and "debug crypto isakmp" output for troubleshooting. -
Cisco Network Assistant and IOS
Does Cisco Network Assistant require a certain Ciso IOS to work?
Hi,
My understanding is that CNA is limited to a certain set of platforms, as indicated here:
http://www.cisco.com/en/US/products/ps5931/products_data_sheet0900aecd8034fbf1.html
AS long as you have a supported device, I don't believe you need a special IOS version in order to use it.
Hope that helps - pls rate the post if it does.
Paresh
Maybe you are looking for
-
When I click on pic, gray square comes up with an exclamation point
My friend got on my computer and uploaded pics from my camera. I don't know what she did, but the pic I want is in the library as a thumbnail, so it looks like its there. But when i click it to edit it or make it larger, instead of the pics coming up
-
Preauth ACL for Wired guest not working
Hi Guys, I have 5508 wireless lan controller running code 7.2. We recently implemented Wired guest access on the WLC and configured necessary changes on the switch. We also have wireless guest profile as well configured on the WLC. We have some peopl
-
HT3529 how do i see the time i sent a text message?
Does anyone know how I see the time next to my text messages?
-
Need render process to run each time form is opened.
I need my SQL queries to run each time the form is opened. This is whether the form is opened by the original user, an approver in workspace, or when someone opens a form (possibly rejected) via an attachment in e-mail. It appears that the processe
-
OS X problem connecting to windows 7 samba
Hi I have a huge problem and searching google didn't provide me with a solution. I run a company with 5 MAC OSX machines, and about 20 Windows 7 and Windows Server 2008R2 machines. The problem is that from OS X i can access some windows pcs, but othe